Windows XML Event Log (EVTX)单条日志清除系列https://3gstudent.github.io/Windows-XML-Event-Log-(EVTX)单条日志清除-一-删除思路与实例
https://3gstudent.github.io/Windows-XML-Event-Log-(EVTX)单条日志清除-二-程序实现删除evtx文件的单条日志记录
https://3gstudent.github.io/Windows-XML-Event-Log-(EVTX)单条日志清除-三-通过解除文件占用删除当前系统单条日志记录
https://3gstudent.github.io/Windows-XML-Event-Log-(EVTX)单条日志清除-四-通过注入获取日志文件句柄删除当前系统单条日志记录
https://3gstudent.github.io/Windows-XML-Event-Log-(EVTX)单条日志清除-五-通过DuplicateHandle获取日志文件句柄删除当前系统单条日志记录
3gstudent-Blog
Windows XML Event Log (EVTX)单条日志清除(一)——删除思路与实例
0x00 前言
通过youtube传播的恶意tor程序
https://securelist.com/onionpoison-infected-tor-browser-installer-youtube/107627/
https://securelist.com/onionpoison-infected-tor-browser-installer-youtube/107627/
Securelist
Malicious Tor Browser spreads through YouTube
Kaspersky researchers detected OnionPoison campaign: malicious Tor Browser installer spreading through a popular YouTube channel and targeting Chinese users.